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AMENDMENT TO THE CLAIMS 

1. (cuireutly amended) A method of providing Resource-Event-Agent (REA) model based 
security, the method comprising: 

identifying an association between a first object and a second object in an REA model; 
creating an association class object for the association between the first object and the 

second object, the association class object having properties defining security 

between the first object and the second object. 

2. (canceled) 

3. (currently amended) The method of claim 3-1, wherein creating the association class object 
further comprises creating one or more association class objects having properties, the properties 
of the one or more association class objects defining security between a first class of objects of 
which the first object is a member and a second class of objects of which the second object is a 
member. 

4. (currently amended) The method of claim 3JU wherein the second object is a securable object 

5. (original) The method of claim 4, wherein the first object is of a particular agent type, and 
wherein a role for a user is defined by the particular agent type for the first object. 

6. (original) The method of claim 5, wherein the second object is a contract or agreement type 
object. 

7. (original) The method of claim 5, wherein the second object is a commitment type object. 

8. (original) The method of claim 5, wherein the second object is an event type object 
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9. (original) The method of claim 5, wherein the second object is a resource type object 

10. (original) The method of claim 5, wherein the second object is an agent type object. 

1 1. (original) The method of claim 5 7 wherein identifying the association between the first object 
and the second object further comprises identifying a control type association between the first 
object and the second object. 

12. (original) The method of claim 5, wherein identifying the association between the first object 
and the second object further comprises identifying a custody type association between the first 
object and the second object. 

13. (currently amended) The method of claim 5, wherein creating the association class obje cj^for 
the association between the first object and the second object further comprises creating the 
association class QfrjCfft in a security model. 

14. (currently amended) The method of claim 13, wherein creating the association class object in 
the security model further comprises creating the association class object in the security model 
separate from the REA model. 

15. (currently amended) The method of claim 13, wherein creating the association class object in 
the security model further comprises creating the association clas s_o_bject in the security model as 
part of the REA model. 

16. (original) The method of claim 13, wherein defining security between the first object and the 
second object further comprises defining permissions and rights of the first object relative to the 
second object. 
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17. (original) The method of claim 16 7 wherein defining permissions and rights of the first object 
relative to the second object further comprises dynamically determining the permissions and 
rights in a security policy logic module outside of the security model. 

18. (currently amended) A computer readable medium having computer-executable instructions 
for performing steps of a method of providing Resource-Event-Agent (REA) model based 
security, the steps comprising: 

identifying an association between a first object and a second object in an REA model; 
creating an association clas$ object for the association between the first object and the 

second object, the association class object having properties defining security 

between the first object and the second object. 

19* (canceled) 

20. (currently amended) The computer readable medium of claim W18, wherein creating the 
association class object further comprises creating one or more association class objects having 
properties, the properties of the one or more association class objects defining security between a 
first class of objects of which the first object is a member and a second class of objects of which 
the second object is a member. 

21. (currently amended) The computer readable medium of claim 4^18, wherein the first object is 
of a parti cular agent type, and wherein a role for a user is defined by the particular agent type for 
the first object. 

22. (original) The computer readable medium of claim 21, wherein the second object is a contract 
or agreement type object. 
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23. (original) The computer readable medium of claim 21, wherein the second object is a 
commitment type object. 

24. (original) The computer readable medium of claim 21, wherein the second object is an event 
type object. 

25. (original) The computer readable medium of claim 21 1 wherein the second object is a 
resource type object. 

26. (original) The computer readable medium of claim 21, wherein the second object is an agent 
type object 

27. (currently amended) The computer readable medium of claim 4918, wherein identifying the 
association between the first object and the second object further comprises identifying a control 
type association between the first object and the second object. 

28. (currently amended) The computer readable medium of claim 4918, wherein identifying the 
association between the first object and the second object further comprises identifying a custody 
type association between the first object and the second object. 

29. (currently amended) The computer readable medium of claim 4-918, wherein creating the 
association class object for the association between the first object and the second object further 
comprises creating the association class o bject in a security model. 

30. (currently amended) The computer readable medium of claim 29, wherein creating the 
association class object in the security model further comprises creating the association class 
object in the security model separate from the REA model. 
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31. (currently amended) The computer readable medium of claim 29, wherein creating the 
association class o bject in the security model further comprises creating the association class 
object in the security model as part of the REA modeL 

32. (original) The computer readable medium of claim 29, wherein defining security between the 
first object and the second object further comprises defining permissions and rights of the first 
object relative to the second object. 

33. (original) The computer readable medium of claim 32, wherein defining permissions and 
rights of the first object relative to the second object further comprises dynamically determining 
the permissions and rights in a security policy logic module outside of the security model. 

34. (currently amended) A system for providing security, the system comprising: 

a Resource-Event-Agent (REA) model configured to implement a first object, a second 
object, and an association between the first object and the second object; 

a security model configured to implement an association class object for the association 
between the first object and the second object in the REA model, such that 
properties of t he association class o&ectjiefines security between the first object 
and the second object 

35. (canceled) 

36. (currently amended) The system of claim 3534, wherein the association class object further 
comprises one or more association class objects having properties, the properties of the one or 
more association class objects defining security between a first class of objects of which the first 
object is a member and a second class of objects of which the second object is a member. 
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37. (currently amended) The system of claim 3534, wherein the security mode] is separate from 
the REA model 

38. (currently amended) The system of claim 3>34, wherein the security model is part of the 
REA model. 

39. (currently amended) The system of claim -3-534, and further comprising a security policy logic 
module coupled to the security model and configured to dynamically determine permissions and 
rights of the first object relative to the second object. 
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